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November 7, 2017 

Office of the Attorney General 
200 St. Paul Place 
Baltimore, MD 21202 
oaK@oag.state .rn d.us 

RE: Notice of Data Security Incident 

Dear Sir or Madam, 

We write to inform you that the computers of Schachter Harris LLP were subject 
to an attack by unknown criminals that could potentially involve Maryland residents who 
filed or were involved in certain lawsuits alleging asbestos-related injuries. While we 
remain uncertain of the extent of the breach, as a precautionary matter, we are notifying 
you of this incident. We have reported the crime to and have been cooperating with the 
FBI in its ongoing investigation. 

Schachter Harris, LLP is a Texas law firm that has served as science expert 
counsel for a defendant in personal injury cases alleging asbestos-related injuries. The 
firm does not maintain an office in your state, and all cases for which we were involved 
for this client were defended by local counsel in the jurisdiction where they were filed. 

In connection with our limited role, we received documents related to the expert issues in 
the cases that had been brought against our client, including pleadings, interrogatory 
answers, depostions, briefs, exhibits, and other materials, These documents can, 
depending on the case, contain information about the plaintiff or other persons involved 
in the case such as name, address, driver’s license number, social security number, 
military and employment records, medical records, and medical information. Copies of 
documents we received about these cases were stored on our computers. Some of the 
cases from which we have documents were cases filed in Maryland or were cases 
involving Maryland residents. We have notified the client we represented in these cases. 

The attackers used encryption ransomware to make some information on our 
computers inaccessible to us, including information we maintained in the capacity 
identified above. When we did not pay the ransom, the criminals claimed to possess the 
data from our computers. Based on our investigation, we believe that the attackers were 
able to acquire some files stored by our firm, relating to at least one of our clients. Based 
on information currently available to us, we believe that the security incident took place 
between August 29, 2017 and September 25, 2017. 
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Because of the encryption by the ransomware attack, we cannot compile a 
definitive list of persons whose information may have been in the files that are now 
encrypted. Furthermore, we do not maintain a database that tracks the addresses of the 
plaintiffs in the cases from which we have documents. Yet, we have endeavored to 
identify persons whose information may possibility have been in the encrypted files and 
have sent notice to a law firm that represented each person so identified. 

Finally, we respectfully note that by sending this precautionary notice, the firm is 
not stating that personally identifying information (as defined by statute and not subject 
to an exclusion) has been accessed or obtained in any specific case, that notice from the 
firm to you or to any residents of your state is required, or that the firm is subject to the 
jurisdiction of the courts of the state to which this notice applies. 

If you have any questions, please contact us at the number listed above. 

Respectfully, 

Schachter Harris, LLP 



By Certified Mail 



